CVE-2023-54001Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 92.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentioned routine, memory is allocated in several places. If the first succeeds and a later one fails, the routine will leak memory. This patch fixes commit 2865d42c78a9 ("staging: r8712u: Add the new driver to the mainline kernel"). A potential memory leak in r8712_xmit_resource_alloc() is also addressed.

Affected Packages4 packages

Linuxlinux/linux_kernel2.6.375.10.190+3
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linux2865d42c78a9121caad52cb02d1fbb7f5cdbc4effc511ae405f7ba29fbcb0246061ec15c272386e1+5
debiandebian/linux< linux 6.1.52-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54001: In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentioned2025-12-24
GHSA
GHSA-4vvr-5h54-mv77: In the Linux kernel, the following vulnerability has been resolved: staging: r8712: Fix memory leak in _r8712_init_xmit_priv() In the above mentione2025-12-24
OSV
staging: r8712: Fix memory leak in _r8712_init_xmit_priv()2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Memory leak in r8712 driver2025-12-24
Debian
CVE-2023-54001: linux - In the Linux kernel, the following vulnerability has been resolved: staging: r8...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54001 Impact, Exploitability, and Mitigation Steps | Wiz